gitoria
All repositories: gitoria
4.0 KB
// components/tokens.hl — ACCESS TOKENS (gitoria#7): what a developer's git uses as the PASSWORD to push over HTTPS// (transport.hl). On the main address, for a logged-in user: make a named token — its secret is shown ONCE, right// after it is made (only its hash is stored) — list the own tokens, remove one. Composed into list.hl (`#tokens`).import { infoOfSession, userOfSession } from '../lib/users.hl'import { tokenRows, createToken, revokeToken } from '../lib/tokens.hl'session = nullme = infoOfSession(session)shown = me != nullmyUser = userOfSession(session)tokens = myUser != null ? tokenRows(myUser.id) : []showHead = shownshowForm = shownshowSecret = falseshowNone = shown && tokens.length == 0tokenError = ''newSecret = ''hasSecret = falsetokenName = ''View {accessTokens { id = "tokens"if (showHead) { h2 { "Access tokens" } }if (showHead) { p { class = "muted" "To push with git over HTTPS, use a token as the password (any user name). Reading a repository needs no token." } }if (showForm) {form { id = "tokenform"on submit(e) {e.preventDefault()emit makeToken(e)}label { "Name (for example the computer it is for)"input { id = "tokenname" name = "tokenname" required = "required" maxlength = "60" autocomplete = "off" value = tokenName on input(e) { emit setTokenName(e.target.value) } }}button { id = "tokensave" type = "submit" "Make token" }p { id = "tokenerror" class = "message" tokenError }}}if (showSecret) { p { id = "tokennotice" class = "notice" "Copy your token now — it is not shown again:" } }if (showSecret) { pre { id = "tokensecret" newSecret } }if (showNone) { p { id = "notokens" class = "muted" "You have no tokens yet." } }ol { id = "tokenlist"for (t of tokens) {li {span { class = "slug" t.name }time { t.created }button { class = "quiet removetoken" type = "button" value = t.id "Remove" on click(e) { emit removeToken(e.target.value) } }}}}}}// one `if` per element, none inside another (a nested `if` broke the client's repaint on logout)on setTokenName(v) { tokenName = v }on makeToken(e) {let r = emit server gitoriaMakeToken(tokenName)if (r == null || r.error != null) {tokenError = r != null ? r.error : 'could not make the token'return null}tokenError = ''tokenName = ''newSecret = r.tokenhasSecret = true// the face's answer can bring `tokens` fresh from the server already (hl:web ships a member derived from// `session` in the ack's sync, hybriel 64527baa) — so the new row is put on top ONCE, never twicelet next = [r.row]for (x of tokens) { if (x.id != r.row.id) { next.push(x) } }tokens = nextshowHead = shownshowForm = shownshowSecret = shown && hasSecretshowNone = shown && tokens.length == 0}on removeToken(id) {let r = emit server gitoriaRemoveToken(id)if (r == null || r.error != null) {tokenError = r != null ? r.error : 'could not remove the token'return null}tokenError = ''let next = []for (x of tokens) { if (x.id != id) { next.push(x) } }tokens = nextshowHead = shownshowForm = shownshowSecret = shown && hasSecretshowNone = shown && tokens.length == 0}// a login / logout (the shell's faces push them) shows or hides the sectionon client gitoriaSignedIn(tag, info) {shown = truehasSecret = falseshowHead = shownshowForm = shownshowSecret = shown && hasSecretshowNone = shown && tokens.length == 0}on client gitoriaSignedOut(tag) {shown = falsehasSecret = falsenewSecret = ''tokens = []showHead = shownshowForm = shownshowSecret = shown && hasSecretshowNone = shown && tokens.length == 0}on server gitoriaMakeToken(name, session) {let u = userOfSession(session)if (u == null) { return { error = 'log in with ident (top right) first' } }return createToken(u.id, name)}on server gitoriaRemoveToken(id, session) {let u = userOfSession(session)if (u == null) { return { error = 'log in with ident (top right) first' } }return revokeToken(u.id, id)}
Branches
- mainmain branch
Latest commits
- 090a20c6mission 002 (code order) 2/4: one lib/ file per topic — git.hl split into git (calls, branches, init, temp folder) / homepage / code / pulls / releases (+ git-helpers: paths, ids, |||PR/|||RL markers); repos-helpers, tickets-helpers, transport-helpers; util.hl = localtime + env, storage dir, addresses, lists, text checks, one newest-first sort (was 3 copies); the function routes out of project.hl into lib/api.hl (thin; plumbing in api-helpers.hl), sshgate.hl folded into api.hl + sshkeys.hl keyLine + repos.hl mayPush; 'Make main' and the merge answer out of the faces (code.hl makeMain, pulls.hl pullsView), one login helper (users.hl userOfLoginCode); project.hl is the map. Session-writing routes get &req + &server.sessions. gates 200/0, 46/0, 44/0; real-data identical except /login/failed now shows the parked reason for a browser that already had a session (the old copy-of-req lost it)mre
- 110c2799mission 002 (code order) 1/4: .hl files out of the root — lib/ (api, git, localtime, markdown, repos, sshgate, sshkeys, tickets, tokens, transport, users), components/styles.hl; jsoncheck.hl removed (imported nowhere); import paths only. gates 200/0, 46/0, 44/0; real-data reads + writes identicalmre
- fdfb4b1bgitoria: Hybriel master 06617221 (plugin allocators 3a781359 + 413f60e4, mpackdb 2cb7ae5e, http1 773de63e); gates 200/0, 46/0, 44/0mre
- 5b46ac84antcolony#40: LOG.md — missions 069/072 are antcolony missions (report paths on Byrodin)mre
- 5602ff41gitoria: Hybriel master 190aa11d (fc838894 GC correctness, #127 mountKids by reference, #126, #48) — tracker README flat; gates 200/0, 46/0, 44/0mre
- e85eaf01gitoria: 069 round 2 — hybriel 1a096ad3 not adopted (Markdown SSR still grows); browser gate waits for the server-side logout before restartmre
- 09ce4f3fgitoria: mission 069 re-vendor hybriel 8efba065 stopped (big SSR pages grow + slow down); lambda audit clean; old vendor keptmre
- 3dc43108antcolony#40: mission references point to the moved missionsmre
- 8d9450fdantcolony#40: history (LOG.md), worker briefs (missions/) and reports moved here from antcolony, numbered per project; old numbers in antcolony docs/mission-map.mdmre
- 205d5fe4gitoria: Hybriel master ff51cf46; ssh keys/tokens no double rows (session sync); gates follow #20mre
- 9b27cb26gitoria#21: installable app (manifest, service worker, offline start page), own iconmre
- 68dcb603deploy.sh: back up live storage/.sessions/.env before every deploy (newest 5 kept)mre
- e2deed6dgitoria#20: "Add code" only on the Code page of an empty repository, no collapsiblemre
- 8bb97ffddeploy.sh: never send .git or .gitignore to Byrodinmre
- fd981932State of 2026-09-27; bin/ no longer tracked (Hybriel commit is in README)mre
- 4a2d7125initial commitmre